Below is my OTL Log:
OTL logfile created on: 6/24/2013 2:38:25 PM - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\RITTERBY\Desktop
64bit- An unknown product (Version = 6.2.9200) - Type = NTWorkstation
Internet Explorer (Version = 9.10.9200.16599)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy
7.96 Gb Total Physical Memory | 5.38 Gb Available Physical Memory | 67.53% Memory free
10.21 Gb Paging File | 7.40 Gb Available in Paging File | 72.49% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 111.69 Gb Total Space | 35.61 Gb Free Space | 31.88% Space Free | Partition Type: NTFS
Drive D: | 149.04 Gb Total Space | 143.23 Gb Free Space | 96.10% Space Free | Partition Type: NTFS
Computer Name: RITTERBY-PC | User Name: RITTERBY | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
========== Processes (SafeList) ==========
PRC - C:\Users\RITTERBY\Desktop\OTL.exe (OldTimer Tools)
PRC - C:\Users\RITTERBY\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
PRC - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (Adobe Systems Incorporated)
PRC - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe (Malwarebytes Corporation)
PRC - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (NVIDIA Corporation)
PRC - C:\Program Files (x86)\Carbonite\Carbonite Backup\CarboniteUI.exe (Carbonite, Inc.)
PRC - C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\AAM Updates Notifier.exe (Adobe Systems Incorporated)
PRC - C:\ProgramData\TVersity\Media Server\MediaServer.exe ()
========== Modules (No Company Name) ==========
MOD - C:\Users\RITTERBY\AppData\Roaming\Dropbox\bin\libcef.dll ()
MOD - C:\Users\RITTERBY\AppData\Roaming\Dropbox\bin\wxmsw28uh_vc.dll ()
========== Services (SafeList) ==========
SRV:64bit: - (VSSERV) -- C:\Program Files\Bitdefender\Bitdefender 2013\vsserv.exe (Bitdefender)
SRV:64bit: - (netprofm) -- C:\Windows\SysNative\netprofmsvc.dll (Microsoft Corporation)
SRV:64bit: - (BrokerInfrastructure) -- C:\Windows\SysNative\bisrv.dll (Microsoft Corporation)
SRV:64bit: - (AudioEndpointBuilder) -- C:\Windows\SysNative\AudioEndpointBuilder.dll (Microsoft Corporation)
SRV:64bit: - (BdDesktopParental) -- C:\Program Files\Bitdefender\Bitdefender 2013\bdparentalservice.exe (Bitdefender)
SRV:64bit: - (UPDATESRV) -- C:\Program Files\Bitdefender\Bitdefender 2013\updatesrv.exe (Bitdefender)
SRV:64bit: - (TimeBroker) -- C:\Windows\SysNative\TimeBrokerServer.dll (Microsoft Corporation)
SRV:64bit: - (SystemEventsBroker) -- C:\Windows\SysNative\SystemEventsBrokerServer.dll (Microsoft Corporation)
SRV:64bit: - (CarboniteService) -- C:\Program Files\Carbonite\Carbonite Backup\CarboniteService.exe (Carbonite, Inc. (www.carbonite.com))
SRV:64bit: - (wlidsvc) -- C:\Windows\SysNative\wlidsvc.dll (Microsoft Corporation)
SRV:64bit: - (LSM) -- C:\Windows\SysNative\lsm.dll (Microsoft Corporation)
SRV:64bit: - (PrintNotify) -- C:\Windows\SysNative\spool\drivers\x64\3\PrintConfig.dll (Microsoft Corporation)
SRV:64bit: - (WSService) -- C:\Windows\SysNative\WSService.dll (Microsoft Corporation)
SRV:64bit: - (fhsvc) -- C:\Windows\SysNative\fhsvc.dll (Microsoft Corporation)
SRV:64bit: - (WiaRpc) -- C:\Windows\SysNative\wiarpc.dll (Microsoft Corporation)
SRV:64bit: - (Wcmsvc) -- C:\Windows\SysNative\wcmsvc.dll (Microsoft Corporation)
SRV:64bit: - (VaultSvc) -- C:\Windows\SysNative\vaultsvc.dll (Microsoft Corporation)
SRV:64bit: - (svsvc) -- C:\Windows\SysNative\svsvc.dll (Microsoft Corporation)
SRV:64bit: - (Netlogon) -- C:\Windows\SysNative\netlogon.dll (Microsoft Corporation)
SRV:64bit: - (NcaSvc) -- C:\Windows\SysNative\NcaSvc.dll (Microsoft Corporation)
SRV:64bit: - (NcdAutoSetup) -- C:\Windows\SysNative\NcdAutoSetup.dll (Microsoft Corporation)
SRV:64bit: - (KeyIso) -- C:\Windows\SysNative\keyiso.dll (Microsoft Corporation)
SRV:64bit: - (EFS) -- C:\Windows\SysNative\efssvc.dll (Microsoft Corporation)
SRV:64bit: - (DsmSvc) -- C:\Windows\SysNative\DeviceSetupManager.dll (Microsoft Corporation)
SRV:64bit: - (DeviceAssociationService) -- C:\Windows\SysNative\das.dll (Microsoft Corporation)
SRV:64bit: - (AllUserInstallAgent) -- C:\Windows\SysNative\AUInstallAgent.dll (Microsoft Corporation)
SRV:64bit: - (AppMgmt) -- C:\Windows\SysNative\appmgmts.dll (Microsoft Corporation)
SRV:64bit: - (vmicvss) -- C:\Windows\SysNative\icsvc.dll (Microsoft Corporation)
SRV:64bit: - (vmictimesync) -- C:\Windows\SysNative\icsvc.dll (Microsoft Corporation)
SRV:64bit: - (vmicshutdown) -- C:\Windows\SysNative\icsvc.dll (Microsoft Corporation)
SRV:64bit: - (vmicrdv) -- C:\Windows\SysNative\icsvc.dll (Microsoft Corporation)
SRV:64bit: - (vmickvpexchange) -- C:\Windows\SysNative\icsvc.dll (Microsoft Corporation)
SRV:64bit: - (vmicheartbeat) -- C:\Windows\SysNative\icsvc.dll (Microsoft Corporation)
SRV:64bit: - (EPSON_EB_RPCV4_04) -- C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S50STB.EXE (SEIKO EPSON CORPORATION)
SRV:64bit: - (EPSON_PM_RPCV4_04) -- C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S50RPB.EXE (SEIKO EPSON CORPORATION)
SRV:64bit: - (EpsonCustomerParticipation) -- C:\Program Files\EPSON\EpsonCustomerParticipation\EPCP.exe (SEIKO EPSON CORPORATION)
SRV:64bit: - (WinTabService) -- C:\Windows\SysNative\Drivers\WTSrv.exe (Tablet Driver)
SRV:64bit: - (nlsInterface) -- C:\Windows\SysNative\nlsInterface.exe (Nalpeiron Ltd.)
SRV - (AdobeFlashPlayerUpdateSvc) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe (Adobe Systems Incorporated)
SRV - (MozillaMaintenance) -- C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe (Mozilla Foundation)
SRV - (AdobeARMservice) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (Adobe Systems Incorporated)
SRV - (MBAMService) -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe (Malwarebytes Corporation)
SRV - (MBAMScheduler) -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe (Malwarebytes Corporation)
SRV - (nvUpdatusService) -- C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe (NVIDIA Corporation)
SRV - (Stereo Service) -- C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (NVIDIA Corporation)
SRV - (PrintNotify) -- C:\Windows\system32\spool\DRIVERS\x64\3\PrintConfig.dll (Microsoft Corporation)
SRV - (TuneUp.UtilitiesSvc) -- C:\Program Files (x86)\TuneUp Utilities 2013\TuneUpUtilitiesService64.exe (TuneUp Software)
SRV - (asComSvc) -- C:\Program Files (x86)\ASUS\AXSP\1.00.19\atkexComSvc.exe ()
SRV - (AsSysCtrlService) -- C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.13\AsSysCtrlService.exe (ASUSTeK Computer Inc.)
SRV - (PCPitstop Scheduling) -- C:\Program Files (x86)\PCPitstop\PCPitstopScheduleService.exe (PC Pitstop LLC)
SRV - (TVersityMediaServer) -- C:\ProgramData\TVersity\Media Server\MediaServer.exe ()
SRV - (StorSvc) -- C:\Windows\SysWOW64\StorSvc.dll (Microsoft Corporation)
SRV - (asHmComSvc) -- C:\Program Files (x86)\ASUS\AAHM\1.00.20\aaHMSvc.exe (ASUSTeK Computer Inc.)
SRV - (DymoPnpService) -- C:\Program Files (x86)\DYMO\DYMO Label Software\DymoPnpService.exe (Sanford, L.P.)
SRV - (SwitchBoard) -- C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe (Adobe Systems Incorporated)
========== Driver Services (SafeList) ==========
DRV:64bit: - (trufos) -- C:\Windows\SysNative\Drivers\trufos.sys (BitDefender S.R.L.)
DRV:64bit: - (USBHUB3) -- C:\Windows\SysNative\Drivers\USBHUB3.SYS (Microsoft Corporation)
DRV:64bit: - (UCX01000) -- C:\Windows\SysNative\Drivers\UCX01000.SYS (Microsoft Corporation)
DRV:64bit: - (spaceport) -- C:\Windows\SysNative\Drivers\spaceport.sys (Microsoft Corporation)
DRV:64bit: - (avc3) -- C:\Windows\SysNative\Drivers\avc3.sys (BitDefender)
DRV:64bit: - (BdfNdisf) -- C:\Program Files\Common Files\Bitdefender\Bitdefender Firewall\bdfndisf6.sys (BitDefender LLC)
DRV:64bit: - (avckf) -- C:\Windows\SysNative\Drivers\avckf.sys (BitDefender)
DRV:64bit: - (MBAMProtector) -- C:\Windows\SysNative\Drivers\mbam.sys (Malwarebytes Corporation)
DRV:64bit: - (gzflt) -- C:\Windows\SysNative\Drivers\gzflt.sys (BitDefender LLC)
DRV:64bit: - (USBXHCI) -- C:\Windows\SysNative\Drivers\USBXHCI.SYS (Microsoft Corporation)
DRV:64bit: - (storahci) -- C:\Windows\SysNative\Drivers\storahci.sys (Microsoft Corporation)
DRV:64bit: - (TPM) -- C:\Windows\SysNative\Drivers\tpm.sys (Microsoft Corporation)
DRV:64bit: - (sdbus) -- C:\Windows\SysNative\Drivers\sdbus.sys (Microsoft Corporation)
DRV:64bit: - (pdc) -- C:\Windows\SysNative\Drivers\pdc.sys (Microsoft Corporation)
DRV:64bit: - (BthAvrcpTg) -- C:\Windows\SysNative\Drivers\BthAvrcpTg.sys (Microsoft Corporation)
DRV:64bit: - (BDSandBox) -- C:\Windows\SysNative\Drivers\bdsandbox.sys (BitDefender SRL)
DRV:64bit: - (WdBoot) -- C:\Windows\SysNative\Drivers\WdBoot.sys (Microsoft Corporation)
DRV:64bit: - (WdFilter) -- C:\Windows\SysNative\Drivers\WdFilter.sys (Microsoft Corporation)
DRV:64bit: - (msgpiowin32) -- C:\Windows\SysNative\Drivers\msgpiowin32.sys (Microsoft Corporation)
DRV:64bit: - (bthhfhid) -- C:\Windows\SysNative\Drivers\BthhfHid.sys (Microsoft Corporation)
DRV:64bit: - (hidi2c) -- C:\Windows\SysNative\Drivers\hidi2c.sys (Microsoft Corporation)
DRV:64bit: - (FxPPM) -- C:\Windows\SysNative\Drivers\fxppm.sys (Microsoft Corporation)
DRV:64bit: - (bdfwfpf) -- C:\Program Files\Common Files\Bitdefender\Bitdefender Firewall\bdfwfpf.sys (BitDefender LLC)
DRV:64bit: - (RdpVideoMiniport) -- C:\Windows\SysNative\Drivers\rdpvideominiport.sys (Microsoft Corporation)
DRV:64bit: - (sdstor) -- C:\Windows\SysNative\Drivers\sdstor.sys (Microsoft Corporation)
DRV:64bit: - (dam) -- C:\Windows\SysNative\Drivers\dam.sys (Microsoft Corporation)
DRV:64bit: - (WSDScan) -- C:\Windows\SysNative\Drivers\WSDScan.sys (Microsoft Corporation)
DRV:64bit: - (GPIOClx0101) -- C:\Windows\SysNative\Drivers\msgpioclx.sys (Microsoft Corporation)
DRV:64bit: - (ebdrv) -- C:\Windows\SysNative\Drivers\evbda.sys (Broadcom Corporation)
DRV:64bit: - (b06bdrv) -- C:\Windows\SysNative\Drivers\bxvbda.sys (Broadcom Corporation)
DRV:64bit: - (asmtxhci) -- C:\Windows\SysNative\Drivers\asmtxhci.sys (ASMedia Technology Inc)
DRV:64bit: - (asmthub3) -- C:\Windows\SysNative\Drivers\asmthub3.sys (ASMedia Technology Inc)
DRV:64bit: - (Fs_Rec) -- C:\WINDOWS\SysNative\drivers\fs_rec.sys (Microsoft Corporation)
DRV:64bit: - (condrv) -- C:\Windows\SysNative\Drivers\condrv.sys (Microsoft Corporation)
DRV:64bit: - (VSTXRAID) -- C:\Windows\SysNative\Drivers\VSTXRAID.SYS (VIA Corporation)
DRV:64bit: - (VerifierExt) -- C:\Windows\SysNative\Drivers\VerifierExt.sys (Microsoft Corporation)
DRV:64bit: - (UASPStor) -- C:\Windows\SysNative\Drivers\uaspstor.sys (Microsoft Corporation)
DRV:64bit: - (acpiex) -- C:\Windows\SysNative\Drivers\acpiex.sys (Microsoft Corporation)
DRV:64bit: - (mvumis) -- C:\Windows\SysNative\Drivers\mvumis.sys (Marvell Semiconductor, Inc.)
DRV:64bit: - (stexstor) -- C:\Windows\SysNative\Drivers\stexstor.sys (Promise Technology, Inc.)
DRV:64bit: - (LSI_SAS2) -- C:\Windows\SysNative\Drivers\lsi_sas2.sys (LSI Corporation)
DRV:64bit: - (LSI_SSS) -- C:\Windows\SysNative\Drivers\lsi_sss.sys (LSI Corporation)
DRV:64bit: - (HpSAMD) -- C:\Windows\SysNative\Drivers\HpSAMD.sys (Hewlett-Packard Company)
DRV:64bit: - (EhStorTcgDrv) -- C:\Windows\SysNative\Drivers\EhStorTcgDrv.sys (Microsoft Corporation)
DRV:64bit: - (EhStorClass) -- C:\Windows\SysNative\Drivers\EhStorClass.sys (Microsoft Corporation)
DRV:64bit: - (amdsbs) -- C:\Windows\SysNative\Drivers\amdsbs.sys (AMD Technologies Inc.)
DRV:64bit: - (3ware) -- C:\Windows\SysNative\Drivers\3ware.sys (LSI)
DRV:64bit: - (amdsata) -- C:\Windows\SysNative\Drivers\amdsata.sys (Advanced Micro Devices)
DRV:64bit: - (amdxata) -- C:\Windows\SysNative\Drivers\amdxata.sys (Advanced Micro Devices)
DRV:64bit: - (CLFS) -- C:\Windows\SysNative\Drivers\clfs.sys (Microsoft Corporation)
DRV:64bit: - (WFPLWFS) -- C:\Windows\SysNative\Drivers\wfplwfs.sys (Microsoft Corporation)
DRV:64bit: - (vpci) -- C:\Windows\SysNative\Drivers\vpci.sys (Microsoft Corporation)
DRV:64bit: - (terminpt) -- C:\Windows\SysNative\Drivers\terminpt.sys (Microsoft Corporation)
DRV:64bit: - (WSDPrintDevice) -- C:\Windows\SysNative\Drivers\WSDPrint.sys (Microsoft Corporation)
DRV:64bit: - (mshidumdf) -- C:\Windows\SysNative\Drivers\mshidumdf.sys (Microsoft Corporation)
DRV:64bit: - (BasicDisplay) -- C:\Windows\SysNative\Drivers\BasicDisplay.sys (Microsoft Corporation)
DRV:64bit: - (HyperVideo) -- C:\Windows\SysNative\Drivers\HyperVideo.sys (Microsoft Corporation)
DRV:64bit: - (BasicRender) -- C:\Windows\SysNative\Drivers\BasicRender.sys (Microsoft Corporation)
DRV:64bit: - (gencounter) -- C:\Windows\SysNative\Drivers\vmgencounter.sys (Microsoft Corporation)
DRV:64bit: - (kdnic) -- C:\Windows\SysNative\Drivers\kdnic.sys (Microsoft Corporation)
DRV:64bit: - (acpitime) -- C:\Windows\SysNative\Drivers\acpitime.sys (Microsoft Corporation)
DRV:64bit: - (npsvctrig) -- C:\Windows\SysNative\Drivers\npsvctrig.sys (Microsoft Corporation)
DRV:64bit: - (WpdUpFltr) -- C:\Windows\SysNative\Drivers\WpdUpFltr.sys (Microsoft Corporation)
DRV:64bit: - (acpipagr) -- C:\Windows\SysNative\Drivers\acpipagr.sys (Microsoft Corporation)
DRV:64bit: - (hyperkbd) -- C:\Windows\SysNative\Drivers\hyperkbd.sys (Microsoft Corporation)
DRV:64bit: - (SerCx) -- C:\Windows\SysNative\Drivers\SerCx.sys (Microsoft Corporation)
DRV:64bit: - (SpbCx) -- C:\Windows\SysNative\Drivers\SpbCx.sys (Microsoft Corporation)
DRV:64bit: - (TsUsbGD) -- C:\Windows\SysNative\Drivers\TsUsbGD.sys (Microsoft Corporation)
DRV:64bit: - (BthHFEnum) -- C:\Windows\SysNative\Drivers\bthhfenum.sys (Microsoft Corporation)
DRV:64bit: - (dmvsc) -- C:\Windows\SysNative\Drivers\dmvsc.sys (Microsoft Corporation)
DRV:64bit: - (TsUsbFlt) -- C:\Windows\SysNative\Drivers\TsUsbFlt.sys (Microsoft Corporation)
DRV:64bit: - (Vid) -- C:\Windows\SysNative\Drivers\Vid.sys (Microsoft Corporation)
DRV:64bit: - (storvsp) -- C:\Windows\SysNative\Drivers\storvsp.sys (Microsoft Corporation)
DRV:64bit: - (wpcfltr) -- C:\Windows\SysNative\Drivers\wpcfltr.sys (Microsoft Corporation)
DRV:64bit: - (vmbusr) -- C:\Windows\SysNative\Drivers\vmbusr.sys (Microsoft Corporation)
DRV:64bit: - (vpcivsp) -- C:\Windows\SysNative\Drivers\vpcivsp.sys (Microsoft Corporation)
DRV:64bit: - (NdisImPlatform) -- C:\Windows\SysNative\Drivers\NdisImPlatform.sys (Microsoft Corporation)
DRV:64bit: - (MsLldp) -- C:\Windows\SysNative\Drivers\mslldp.sys (Microsoft Corporation)
DRV:64bit: - (Ndu) -- C:\Windows\SysNative\Drivers\Ndu.sys (Microsoft Corporation)
DRV:64bit: - (bdelam) -- C:\Windows\SysNative\Drivers\bdelam.sys (Bitdefender)
DRV:64bit: - (RTL8168) -- C:\Windows\SysNative\Drivers\Rt630x64.sys (Realtek )
DRV:64bit: - (PxHlpa64) -- C:\Windows\SysNative\Drivers\PxHlpa64.sys (Rovi Corporation)
DRV:64bit: - (silabser) -- C:\Windows\SysNative\Drivers\silabser.sys (Silicon Laboratories)
DRV:64bit: - (silabenm) -- C:\Windows\SysNative\Drivers\silabenm.sys (Silicon Laboratories)
DRV:64bit: - (ssadmdm) -- C:\Windows\SysNative\Drivers\ssadmdm.sys (MCCI Corporation)
DRV:64bit: - (ssadbus) -- C:\Windows\SysNative\Drivers\ssadbus.sys (MCCI Corporation)
DRV:64bit: - (ssadmdfl) -- C:\Windows\SysNative\Drivers\ssadmdfl.sys (MCCI Corporation)
DRV:64bit: - (amd_sata) -- C:\Windows\SysNative\Drivers\amd_sata.sys (Advanced Micro Devices)
DRV:64bit: - (amd_xata) -- C:\Windows\SysNative\Drivers\amd_xata.sys (Advanced Micro Devices)
DRV:64bit: - (usbfilter) -- C:\Windows\SysNative\Drivers\usbfilter.sys (Advanced Micro Devices)
DRV:64bit: - (UCTblHid) -- C:\Windows\SysNative\Drivers\UCTblHid.sys (Tablet Driver)
DRV:64bit: - (TClass2k) -- C:\Windows\SysNative\Drivers\TClass2k.sys (Tablet Driver)
DRV:64bit: - (PTSimHid) -- C:\Windows\SysNative\Drivers\PTSimHid.sys (PenTablet Driver)
DRV - (TuneUpUtilitiesDrv) -- C:\Program Files (x86)\TuneUp Utilities 2013\TuneUpUtilitiesDriver64.sys (TuneUp Software)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank
IE:64bit: - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE:64bit: - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/...ms}&FORM=IE8SRC
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank
IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/...ms}&FORM=IE8SRC
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://google.com/
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://www.msn.com/?ocid=iehp
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = en-US
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 3C D3 A6 A3 F8 6E CD 01 [binary data]
IE - HKCU\..\URLSearchHook: {81017EA9-9AA8-4A6A-9734-7AF40E7D593F} - No CLSID value found
IE - HKCU\..\SearchScopes,DefaultScope = {C73CBA0A-EC66-4EC8-AB16-5E5134D06F51}
IE - HKCU\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/...amp;FORM=IE10SR
IE - HKCU\..\SearchScopes\{C73CBA0A-EC66-4EC8-AB16-5E5134D06F51}: "URL" = http://www.google.co...utputEncoding?}
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local
========== FireFox ==========
FF:64bit: - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\WINDOWS\system32\Macromed\Flash\NPSWF64_11_7_700_224.dll File not found
FF:64bit: - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.7.2: C:\WINDOWS\system32\npDeployJava1.dll (Oracle Corporation)
FF:64bit: - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files\Microsoft Silverlight\5.1.20125.0\npctrl.dll ( Microsoft Corporation)
FF:64bit: - HKLM\Software\MozillaPlugins\adobe.com/AdobeAAMDetect: C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll (Adobe Systems)
FF:64bit: - HKLM\Software\MozillaPlugins\adobe.com/AdobeExManDetect: C:\Program Files (x86)\Adobe\Adobe Extension Manager CS6\Win64Plugin\npAdobeExManDetectX64.dll (Adobe Systems)
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_11_7_700_224.dll ()
FF - HKLM\Software\MozillaPlugins\@dymo.com/DymoLabelFramework: C:\Program Files (x86)\DYMO\DYMO Label Software\Framework\npDYMOLabelFramework.dll ( Sanford L.P.)
FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.25.2: C:\WINDOWS\SysWOW64\npDeployJava1.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.25.2: C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files (x86)\Microsoft Silverlight\5.1.20125.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@nvidia.com/3DVision: C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
FF - HKLM\Software\MozillaPlugins\@nvidia.com/3DVisionStreaming: C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files (x86)\Google\Update\1.3.21.145\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files (x86)\Google\Update\1.3.21.145\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\Adobe Acrobat: C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Air\nppdf32.dll (Adobe Systems Inc.)
FF - HKLM\Software\MozillaPlugins\adobe.com/AdobeAAMDetect: C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll (Adobe Systems)
FF - HKLM\Software\MozillaPlugins\adobe.com/AdobeExManDetect: C:\Program Files (x86)\Adobe\Adobe Extension Manager CS6\npAdobeExManDetectX86.dll (Adobe Systems)
FF - HKCU\Software\MozillaPlugins\@sony.com/Some: C:\Program Files (x86)\Sony\Bloggie Software\npsome.dll (Sony)
FF - HKCU\Software\MozillaPlugins\@unity3d.com/UnityPlayer,version=1.0: C:\Users\RITTERBY\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS)
64bit-FF - HKEY_LOCAL_MACHINE\software\mozilla\Thunderbird\Extensions\\bdThunderbird@bitdefender.com: C:\PROGRAM FILES\BITDEFENDER\BITDEFENDER 2013\BDTBEXT [2012/11/12 00:36:46 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\web2pdfextension@web2pdf.adobedotcom: C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Browser\WCFirefoxExtn [2013/05/27 15:16:18 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 21.0\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2013/06/19 14:41:43 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 21.0\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins [2013/05/09 17:05:04 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Thunderbird\Extensions\\bdThunderbird@bitdefender.com: C:\Program Files\Bitdefender\Bitdefender 2013\bdtbext [2012/11/12 00:36:46 | 000,000,000 | ---D | M]
[2012/07/08 23:06:13 | 000,000,000 | ---D | M] (No name found) -- C:\Users\RITTERBY\AppData\Roaming\mozilla\Extensions
[2013/06/19 14:44:25 | 000,000,000 | ---D | M] (No name found) -- C:\Users\RITTERBY\AppData\Roaming\mozilla\Firefox\Profiles\kh6rjam7.xp\extensions
[2013/06/19 14:38:32 | 000,000,000 | ---D | M] (SelectionLinks) -- C:\Users\RITTERBY\AppData\Roaming\mozilla\Firefox\Profiles\kh6rjam7.xp\extensions\{15EBDDEA-A5C0-46C3-A41A-59B3D05360C0}
[2013/06/19 14:38:32 | 000,000,000 | ---D | M] (Yahoo! Toolbar) -- C:\Users\RITTERBY\AppData\Roaming\mozilla\Firefox\Profiles\kh6rjam7.xp\extensions\{635abd67-4fe9-1b23-4f01-e679fa7484c1}
[2013/03/22 20:05:21 | 000,221,336 | ---- | M] () (No name found) -- C:\Users\RITTERBY\AppData\Roaming\mozilla\firefox\profiles\kh6rjam7.xp\extensions\{c0c9a2c7-2e5c-4447-bc53-97718bc91e1b}.xpi
[2013/05/09 01:54:48 | 000,870,680 | ---- | M] () (No name found) -- C:\Users\RITTERBY\AppData\Roaming\mozilla\firefox\profiles\kh6rjam7.xp\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi
[2013/06/19 14:41:43 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions
[2013/06/19 14:41:43 | 000,000,000 | ---D | M] (Default) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
========== Chrome ==========
CHR - default_search_provider: Google (Enabled)
CHR - default_search_provider: search_url = {google:baseURL}search?q={searchTerms}&{google:RLZ}{google:originalQueryForSuggestion}{google:assistedQueryStats}{g
oogle:searchFieldtrialParameter}{google:searchClient}{google:sourceId}{google:ins
tantExtendedEnabledParameter}ie={inputEncoding}
CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client=chrome&q={searchTerms}&{google:cursorPosition}sugkey={google:suggestAPIKeyParameter},
CHR - homepage:
CHR - plugin: Shockwave Flash (Enabled) = C:\Program Files (x86)\Google\Chrome\Application\27.0.1453.116\PepperFlash\pepflashplayer.dll
CHR - plugin: Chrome Remote Desktop Viewer (Enabled) = internal-remoting-viewer
CHR - plugin: Native Client (Enabled) = C:\Program Files (x86)\Google\Chrome\Application\27.0.1453.116\ppGoogleNaClPluginChrome.dll
CHR - plugin: Chrome PDF Viewer (Enabled) = C:\Program Files (x86)\Google\Chrome\Application\27.0.1453.116\pdf.dll
CHR - plugin: Adobe Acrobat (Enabled) = C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Browser\nppdf32.dll
CHR - plugin: AdobeExManDetect (Enabled) = C:\Program Files (x86)\Adobe\Adobe Extension Manager CS6\npAdobeExManDetectX86.dll
CHR - plugin: AdobeAAMDetect (Enabled) = C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll
CHR - plugin: DYMO Label Framework (Enabled) = C:\Program Files (x86)\DYMO\DYMO Label Software\Framework\npDYMOLabelFramework.dll
CHR - plugin: Google Update (Enabled) = C:\Program Files (x86)\Google\Update\1.3.21.123\npGoogleUpdate3.dll
CHR - plugin: Java Platform SE 7 U9 (Enabled) = C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll
CHR - plugin: Silverlight Plug-In (Enabled) = C:\Program Files (x86)\Microsoft Silverlight\4.1.10329.0\npctrl.dll
CHR - plugin: NVIDIA 3D Vision (Enabled) = C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll
CHR - plugin: NVIDIA 3D VISION (Enabled) = C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll
CHR - plugin: Java Deployment Toolkit 7.0.70.10 (Enabled) = C:\WINDOWS\SysWOW64\npDeployJava1.dll
CHR - Extension: Google Drive = C:\Users\RITTERBY\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0\
CHR - Extension: YouTube = C:\Users\RITTERBY\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0\
CHR - Extension: Google Search = C:\Users\RITTERBY\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\
CHR - Extension: Gmail = C:\Users\RITTERBY\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_0\
O1 HOSTS File: ([2012/07/09 00:41:46 | 000,001,028 | ---- | M]) - C:\Windows\SysNative\Drivers\etc\hosts
O1 - Hosts: 127.0.0.1 activate.adobe.com
O1 - Hosts: 127.0.0.1 practivate.adobe.com
O1 - Hosts: 127.0.0.1 lmlicenses.wip4.adobe.com
O1 - Hosts: 127.0.0.1 lm.licenses.adobe.com
O2:64bit: - BHO: (Save Valet) - {F0F12903-DE76-4DF7-BCDC-0A0689151189} - C:\Program Files (x86)\SaveValet\ie\SaveValetIE_64.dll (Save Valet)
O2 - BHO: (SelectionLinksBHO Class) - {5BDE3F24-D7B3-40D9-BD31-D1CFF12C47B4} - C:\Program Files (x86)\OApps\SelectionLinks.dll (SelectionLinks)
O2 - BHO: (Java Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
O2 - BHO: (Adobe PDF Conversion Toolbar Helper) - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O2 - BHO: (Java Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
O2 - BHO: (Save Valet) - {F0F12903-DE76-4DF7-BCDC-0A0689151189} - C:\Program Files (x86)\SaveValet\ie\SaveValetIE_32.dll (Save Valet)
O2 - BHO: (SmartSelect Class) - {F4971EE7-DAA0-4053-9964-665D8EE6A077} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O3 - HKLM\..\Toolbar: (Adobe PDF) - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O3 - HKCU\..\Toolbar\WebBrowser: (Adobe PDF) - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O4:64bit: - HKLM..\Run: [AdobeAAMUpdater-1.0] C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe (Adobe Systems Incorporated)
O4:64bit: - HKLM..\Run: [Bdagent] C:\Program Files\Bitdefender\Bitdefender 2013\bdagent.exe (Bitdefender)
O4:64bit: - HKLM..\Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Realtek Semiconductor)
O4 - HKLM..\Run: [] File not found
O4 - HKLM..\Run: [Acrobat Assistant 8.0] C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Acrotray.exe (Adobe Systems Inc.)
O4 - HKLM..\Run: [Adobe Acrobat Speed Launcher] C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Acrobat_sl.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [AdobeCS6ServiceManager] C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [APSDaemon] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe (Apple Inc.)
O4 - HKLM..\Run: [ASUS AiChargerPlus Execute] C:\Program Files (x86)\InstallShield Installation Information\{E6931688-DA2B-4E16-8539-3D323D69C677}\AiChargerPlus.exe (ASUSTek Computer Inc.)
O4 - HKLM..\Run: [Carbonite Backup] C:\Program Files (x86)\Carbonite\Carbonite Backup\CarboniteUI.exe (Carbonite, Inc.)
O4 - HKLM..\Run: [DLSService] C:\Program Files (x86)\DYMO\DYMO Label Software\DLSService.exe (Sanford, L.P.)
O4 - HKLM..\Run: [EEventManager] C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe (SEIKO EPSON CORPORATION)
O4 - HKLM..\Run: [Info Center] C:\Program Files (x86)\PCPitstop\Info Center\InfoCenter.exe (PC Pitstop LLC)
O4 - HKLM..\Run: [SwitchBoard] C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [WTClient] C:\WINDOWS\SysWow64\WTClient.exe (Tablet Driver)
O4 - HKCU..\Run: [cdloader] C:\Users\RITTERBY\AppData\Roaming\mjusbsp\cdloader2.exe (magicJack L.P.)
O4 - Startup: C:\Users\RITTERBY\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk = C:\Users\RITTERBY\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
O4 - Startup: C:\Users\RITTERBY\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OpenOffice.org 3.4.1.lnk = C:\Program Files (x86)\OpenOffice.org 3\program\quickstart.exe ()
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 255
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutorunSetting = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableCursorSuppression = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O8:64bit: - Extra context menu item: Append Link Target to Existing PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8:64bit: - Extra context menu item: Append to Existing PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8:64bit: - Extra context menu item: Convert Link Target to Adobe PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8:64bit: - Extra context menu item: Convert to Adobe PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8 - Extra context menu item: Append Link Target to Existing PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8 - Extra context menu item: Append to Existing PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8 - Extra context menu item: Convert Link Target to Adobe PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8 - Extra context menu item: Convert to Adobe PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O9 - Extra 'Tools' menuitem : Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - Reg Error: Key error. File not found
O10 - NameSpace_Catalog5\Catalog_Entries\000000000007 [] - C:\Program Files (x86)\Bonjour\mdnsNSP.dll (Apple Computer, Inc.)
O1364bit: - gopher Prefix: missing
O13 - gopher Prefix: missing
O15 - HKCU\..Trusted Domains: localhost ([]* in Local intranet)
O16 - DPF: {02BF25D5-8C17-4B23-BC80-D3488ABDDC6B} http://qtinstall.app...ex/qtplugin.cab (QuickTime Object)
O16 - DPF: {0D41B8C5-2599-4893-8183-00195EC8D5F9} http://support.asus....k_sys_ctrl3.cab (asusTek_sysctrl Class)
O16 - DPF: {0E5F0222-96B9-11D3-8997-00104BD12D94} http://utilities.pcp...ols/pcmatic.cab (PCPitstop Utility)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{2025ECCC-AF17-4010-8D13-82CCA88A33B3}: DhcpNameServer = 192.168.1.1
O18:64bit: - Protocol\Handler\livecall - No CLSID value found
O18:64bit: - Protocol\Handler\msnim - No CLSID value found
O18:64bit: - Protocol\Handler\wlmailhtml - No CLSID value found
O20:64bit: - HKLM Winlogon: Shell - (explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\WINDOWS\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (userinit.exe) - C:\WINDOWS\SysWow64\userinit.exe (Microsoft Corporation)
O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O30 - LSA: Security Packages - (livessp) - File not found
O32 - HKLM CDRom: AutoRun - 1
O34 - HKLM BootExecute: (autocheck autochk *)
O35:64bit: - HKLM\..comfile [open] -- "%1" %*
O35:64bit: - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:64bit: - HKLM\...com [@ = comfile] -- "%1" %*
O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)
========== Files/Folders - Created Within 30 Days ==========
[2013/06/24 14:35:35 | 000,602,112 | ---- | C] (OldTimer Tools) -- C:\Users\RITTERBY\Desktop\OTL.exe
[2013/06/24 14:20:59 | 000,388,608 | ---- | C] (Trend Micro Inc.) -- C:\Users\RITTERBY\Desktop\HiJackThis.exe
[2013/06/24 10:20:47 | 000,000,000 | ---D | C] -- C:\Users\RITTERBY\AppData\Local\{FE22222D-C77F-4E4D-8D22-19B13F3420F3}
[2013/06/23 22:20:41 | 000,000,000 | ---D | C] -- C:\Users\RITTERBY\AppData\Local\{BCE3C186-DF97-4846-A67E-CA105345B8EE}
[2013/06/23 10:20:36 | 000,000,000 | ---D | C] -- C:\Users\RITTERBY\AppData\Local\{FB21F4CD-DF34-4907-B452-B758DA9C1747}
[2013/06/22 22:20:30 | 000,000,000 | ---D | C] -- C:\Users\RITTERBY\AppData\Local\{95B95D4D-DBCA-4E34-A3F6-B303624B66A6}
[2013/06/22 10:20:14 | 000,000,000 | ---D | C] -- C:\Users\RITTERBY\AppData\Local\{376ECD19-302C-4F98-BDD3-6B7BBE5C06C2}
[2013/06/22 09:59:16 | 000,000,000 | ---D | C] -- C:\Users\RITTERBY\AppData\Local\Programs
[2013/06/21 22:20:08 | 000,000,000 | ---D | C] -- C:\Users\RITTERBY\AppData\Local\{C141E13A-5851-44AC-ADB3-8843941DA14B}
[2013/06/21 10:20:03 | 000,000,000 | ---D | C] -- C:\Users\RITTERBY\AppData\Local\{F11F2DED-FC7C-456A-9837-A130E09984FA}
[2013/06/20 22:19:45 | 000,000,000 | ---D | C] -- C:\Users\RITTERBY\AppData\Local\{A3063381-8C1A-48D0-B93B-C8480EE15A00}
[2013/06/20 10:19:39 | 000,000,000 | ---D | C] -- C:\Users\RITTERBY\AppData\Local\{C150BDEE-06FC-4614-9CF5-27F5783A0702}
[2013/06/20 00:10:43 | 000,263,592 | ---- | C] (Oracle Corporation) -- C:\WINDOWS\SysWow64\javaws.exe
[2013/06/19 14:30:14 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\SaveValet
[2013/06/19 14:30:10 | 000,000,000 | ---D | C] -- C:\ProgramData\Yahoo!
[2013/06/19 14:29:53 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\OApps
[2013/06/19 14:28:48 | 000,000,000 | ---D | C] -- C:\ProgramData\APN
[2013/06/19 11:09:38 | 000,000,000 | ---D | C] -- C:\Users\RITTERBY\AppData\Local\{BFB038C1-A25A-4B59-A344-A1876658FF81}
[2013/06/18 23:05:15 | 000,000,000 | ---D | C] -- C:\Users\RITTERBY\AppData\Local\{7EEE0CD3-D2AD-42A0-B60B-D7225153EDAC}
[2013/06/18 11:05:53 | 000,000,000 | ---D | C] -- C:\Users\RITTERBY\AppData\Local\{53DEB9F9-42B3-46DF-A074-3AF38D1ECAC1}
[2013/06/17 23:05:47 | 000,000,000 | ---D | C] -- C:\Users\RITTERBY\AppData\Local\{8419D6D6-E6B8-47BC-829B-9B72BAA5275C}
[2013/06/17 11:05:42 | 000,000,000 | ---D | C] -- C:\Users\RITTERBY\AppData\Local\{69C788DE-7C11-4812-B392-1FB398074879}
[2013/06/16 23:05:36 | 000,000,000 | ---D | C] -- C:\Users\RITTERBY\AppData\Local\{C9285C59-A46A-42E4-A5B5-F33CFDB2422C}
[2013/06/16 11:05:30 | 000,000,000 | ---D | C] -- C:\Users\RITTERBY\AppData\Local\{32947787-F252-4DC2-8A52-61FB68B2AEE6}
[2013/06/15 23:05:24 | 000,000,000 | ---D | C] -- C:\Users\RITTERBY\AppData\Local\{6116882F-02C9-4AB9-B4B5-B8EC73FAFF39}
[2013/06/15 16:27:34 | 000,144,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\tssdisai.dll
[2013/06/15 11:05:06 | 000,000,000 | ---D | C] -- C:\Users\RITTERBY\AppData\Local\{A8085A16-B51D-48F3-85A6-7E5CBB318282}
[2013/06/14 23:05:01 | 000,000,000 | ---D | C] -- C:\Users\RITTERBY\AppData\Local\{5DA4C0A8-583C-4E59-A7E9-C016FCC2E78C}
[2013/06/14 18:25:26 | 001,257,472 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\kernel32.dll
[2013/06/14 17:16:56 | 001,300,992 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\gdi32.dll
[2013/06/14 15:55:22 | 000,888,320 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\autochk.exe
[2013/06/14 15:55:22 | 000,542,208 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\untfs.dll
[2013/06/14 15:55:22 | 000,482,816 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\untfs.dll
[2013/06/14 15:55:21 | 000,793,088 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\autochk.exe
[2013/06/14 14:47:22 | 013,644,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.UI.Xaml.dll
[2013/06/14 14:47:21 | 010,788,864 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.UI.Xaml.dll
[2013/06/14 14:47:20 | 010,116,096 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\twinui.dll
[2013/06/14 14:47:20 | 001,131,520 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\AppXDeploymentServer.dll
[2013/06/14 14:47:19 | 000,470,528 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\netprofmsvc.dll
[2013/06/14 14:47:18 | 008,857,088 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\twinui.dll
[2013/06/14 14:47:18 | 002,305,024 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\authui.dll
[2013/06/14 14:47:18 | 002,035,712 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\authui.dll
[2013/06/14 14:47:18 | 000,820,736 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\gpprefcl.dll
[2013/06/14 14:47:18 | 000,760,320 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wuapi.dll
[2013/06/14 14:47:18 | 000,446,720 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\USBHUB3.SYS
[2013/06/14 14:47:18 | 000,014,848 | ---- | C] (Microsoft) -- C:\WINDOWS\SysWow64\rars.rs
[2013/06/14 14:47:18 | 000,014,848 | ---- | C] (Microsoft) -- C:\WINDOWS\SysNative\rars.rs
[2013/06/14 14:47:17 | 000,812,544 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Magnify.exe
[2013/06/14 14:47:17 | 000,708,096 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\AppXDeploymentExtensions.dll
[2013/06/14 14:47:17 | 000,621,056 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wuapi.dll
[2013/06/14 14:47:17 | 000,560,640 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mfmp4srcsnk.dll
[2013/06/14 14:47:17 | 000,501,760 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\DevicePairing.dll
[2013/06/14 14:47:17 | 000,419,840 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\intl.cpl
[2013/06/14 14:47:17 | 000,389,120 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\BCP47Langs.dll
[2013/06/14 14:47:17 | 000,330,240 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\stobject.dll
[2013/06/14 14:47:17 | 000,328,192 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ubpm.dll
[2013/06/14 14:47:17 | 000,284,416 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\spaceport.sys
[2013/06/14 14:47:17 | 000,247,296 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\ubpm.dll
[2013/06/14 14:47:17 | 000,213,248 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\UCX01000.SYS
[2013/06/14 14:47:17 | 000,169,984 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\netplwiz.dll
[2013/06/14 14:47:17 | 000,151,040 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\netplwiz.dll
[2013/06/14 14:47:17 | 000,093,696 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\psmsrv.dll
[2013/06/14 14:47:17 | 000,058,312 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wuauclt.exe
[2013/06/14 14:47:16 | 001,619,968 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wucltux.dll
[2013/06/14 14:47:16 | 000,758,784 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Magnify.exe
[2013/06/14 14:47:16 | 000,582,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\gpprefcl.dll
[2013/06/14 14:47:16 | 000,449,536 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\DevicePairing.dll
[2013/06/14 14:47:16 | 000,411,136 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mfmp4srcsnk.dll
[2013/06/14 14:47:16 | 000,389,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\intl.cpl
[2013/06/14 14:47:16 | 000,309,760 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\BCP47Langs.dll
[2013/06/14 14:47:16 | 000,251,904 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WUSettingsProvider.dll
[2013/06/14 14:47:16 | 000,179,712 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\bisrv.dll
[2013/06/14 14:47:16 | 000,173,568 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\storewuauth.dll
[2013/06/14 14:47:16 | 000,141,824 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wuwebv.dll
[2013/06/14 14:47:16 | 000,125,952 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wuwebv.dll
[2013/06/14 14:47:16 | 000,122,368 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\biwinrt.dll
[2013/06/14 14:47:16 | 000,120,736 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\AuthHost.exe
[2013/06/14 14:47:16 | 000,098,304 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wudriver.dll
[2013/06/14 14:47:16 | 000,092,160 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\biwinrt.dll
[2013/06/14 14:47:16 | 000,083,968 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wudriver.dll
[2013/06/14 14:47:16 | 000,083,968 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\hidclass.sys
[2013/06/14 14:47:15 | 000,039,424 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wuapp.exe
[2013/06/14 14:47:15 | 000,034,304 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wuapp.exe
[2013/06/14 14:47:15 | 000,017,408 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\muifontsetup.dll
[2013/06/14 14:47:15 | 000,014,336 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\muifontsetup.dll
[2013/06/14 11:04:55 | 000,000,000 | ---D | C] -- C:\Users\RITTERBY\AppData\Local\{407A1131-8859-449D-9FF8-105512842511}
[2013/06/13 23:04:49 | 000,000,000 | ---D | C] -- C:\Users\RITTERBY\AppData\Local\{E4AC9785-3238-4190-BE65-91914426E8D6}
[2013/06/13 11:04:43 | 000,000,000 | ---D | C] -- C:\Users\RITTERBY\AppData\Local\{F03E558D-BB83-4C5B-825C-FC2EA9946FDA}
[2013/06/12 23:04:37 | 000,000,000 | ---D | C] -- C:\Users\RITTERBY\AppData\Local\{57BFC160-CEFC-444A-B315-CA63EE3CD1C7}
[2013/06/12 12:13:46 | 001,889,280 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\crypt32.dll
[2013/06/12 12:13:46 | 001,255,936 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\certutil.exe
[2013/06/12 12:13:46 | 001,013,248 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\certutil.exe
[2013/06/12 12:13:46 | 000,141,312 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\cryptnet.dll
[2013/06/12 11:52:38 | 000,733,184 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\win32spl.dll
[2013/06/12 11:30:09 | 000,030,720 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\cryptdlg.dll
[2013/06/12 11:30:09 | 000,025,088 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\cryptdlg.dll
[2013/06/12 11:04:31 | 000,000,000 | ---D | C] -- C:\Users\RITTERBY\AppData\Local\{33EB649F-1423-444D-BD8A-8C97783F4947}
[2013/06/12 10:52:18 | 003,958,784 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\jscript9.dll
[2013/06/12 10:52:16 | 000,915,968 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\uxtheme.dll
[2013/06/12 10:52:16 | 000,855,552 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\jscript.dll
[2013/06/12 10:52:16 | 000,690,688 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\jscript.dll
[2013/06/12 10:52:16 | 000,603,136 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\msfeeds.dll
[2013/06/12 10:52:16 | 000,053,760 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\UXInit.dll
[2013/06/12 10:52:16 | 000,051,712 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ie4uinit.exe
[2013/06/12 10:52:16 | 000,044,032 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\UXInit.dll
[2013/06/11 23:04:26 | 000,000,000 | ---D | C] -- C:\Users\RITTERBY\AppData\Local\{D53C96B4-0532-4CAB-A4B8-2F725F931C05}
[2013/06/11 11:04:20 | 000,000,000 | ---D | C] -- C:\Users\RITTERBY\AppData\Local\{8A139C0F-EC5E-4D9E-BC1D-83602D8F3F70}
[2013/06/10 23:04:14 | 000,000,000 | ---D | C] -- C:\Users\RITTERBY\AppData\Local\{966D3950-C4F4-41FB-B350-51BB959A76B5}
[2013/06/10 17:19:08 | 000,000,000 | ---D | C] -- C:\Users\RITTERBY\Desktop\Brave
[2013/06/10 11:04:08 | 000,000,000 | ---D | C] -- C:\Users\RITTERBY\AppData\Local\{7F7BC70C-03BF-489A-951B-78FEDE397050}
[2013/06/09 23:03:50 | 000,000,000 | ---D | C] -- C:\Users\RITTERBY\AppData\Local\{8BD76B90-D385-48EA-AAC7-06FCD5F94D62}
[2013/06/09 11:03:44 | 000,000,000 | ---D | C] -- C:\Users\RITTERBY\AppData\Local\{429E8538-D223-4A02-8762-297C9D67F0BA}
[2013/06/08 23:03:38 | 000,000,000 | ---D | C] -- C:\Users\RITTERBY\AppData\Local\{6766FA93-29A5-45FC-8675-156C17E90874}
[2013/06/08 11:03:21 | 000,000,000 | ---D | C] -- C:\Users\RITTERBY\AppData\Local\{E1F1DFD0-4CFC-4239-8BD5-6642F7D2AB8F}
[2013/06/07 23:03:15 | 000,000,000 | ---D | C] -- C:\Users\RITTERBY\AppData\Local\{2E2F0CC9-8892-493A-8A32-9B2DC1DEF0AC}
[2013/06/07 11:03:09 | 000,000,000 | ---D | C] -- C:\Users\RITTERBY\AppData\Local\{D2E1FE4B-837A-4FCD-9255-E45E343DDEC2}
[2013/06/06 23:03:03 | 000,000,000 | ---D | C] -- C:\Users\RITTERBY\AppData\Local\{CB572939-A135-4613-B7DC-A0F371F9D7E1}
[2013/06/06 11:02:57 | 000,000,000 | ---D | C] -- C:\Users\RITTERBY\AppData\Local\{9F62446F-AD3A-4882-90D6-7CDC330E2EFB}
[2013/06/05 23:02:52 | 000,000,000 | ---D | C] -- C:\Users\RITTERBY\AppData\Local\{65A719A3-F70F-4A6E-91B6-07A593607290}
[2013/06/05 11:02:34 | 000,000,000 | ---D | C] -- C:\Users\RITTERBY\AppData\Local\{EF6D9AC7-091C-4BDE-B7AB-DC2FEDF1F00E}
[2013/06/04 23:02:28 | 000,000,000 | ---D | C] -- C:\Users\RITTERBY\AppData\Local\{0CE932BB-B993-4AEC-8889-F81218068DB0}
[2013/06/04 11:02:22 | 000,000,000 | ---D | C] -- C:\Users\RITTERBY\AppData\Local\{5417381D-0443-496F-B859-FF7F991F167C}
[2013/06/03 23:02:16 | 000,000,000 | ---D | C] -- C:\Users\RITTERBY\AppData\Local\{218C773E-72AB-4A46-85F6-93F639C734C9}
[2013/06/03 11:02:10 | 000,000,000 | ---D | C] -- C:\Users\RITTERBY\AppData\Local\{3397CE4C-8AD6-4FCB-966E-A55A54371EB6}
[2013/06/02 23:02:05 | 000,000,000 | ---D | C] -- C:\Users\RITTERBY\AppData\Local\{5B94A5F8-E404-48DB-B933-F93A9043D4A4}
[2013/06/02 11:01:59 | 000,000,000 | ---D | C] -- C:\Users\RITTERBY\AppData\Local\{1BF2BF6B-1999-4A30-8385-807A9F02C62C}
[2013/06/01 23:01:53 | 000,000,000 | ---D | C] -- C:\Users\RITTERBY\AppData\Local\{3403434F-13E5-4231-9400-B1F703892C87}
[2013/06/01 11:01:47 | 000,000,000 | ---D | C] -- C:\Users\RITTERBY\AppData\Local\{E8455A15-7CBC-45D6-A213-E0DA5464CB8D}
[2013/05/31 23:01:41 | 000,000,000 | ---D | C] -- C:\Users\RITTERBY\AppData\Local\{FB9AD3C1-3FB7-4807-A86F-D4E8DF0DE223}
[2013/05/31 11:01:35 | 000,000,000 | ---D | C] -- C:\Users\RITTERBY\AppData\Local\{492516B3-A18A-4013-B063-8B48EE98DCD2}
[2013/05/30 23:01:30 | 000,000,000 | ---D | C] -- C:\Users\RITTERBY\AppData\Local\{B4A3CEBF-7254-4A97-AB36-2F20BB2F1A9B}
[2013/05/30 11:01:24 | 000,000,000 | ---D | C] -- C:\Users\RITTERBY\AppData\Local\{250F3117-671C-48CF-BABB-49EFFEDD6E09}
[2013/05/29 23:01:06 | 000,000,000 | ---D | C] -- C:\Users\RITTERBY\AppData\Local\{6A27FE61-98E0-4C80-BE4B-EF8C74F00AFF}
[2013/05/29 14:02:34 | 000,000,000 | ---D | C] -- C:\Users\RITTERBY\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FontForge
[2013/05/29 14:02:32 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\FontForge
[2013/05/29 11:01:00 | 000,000,000 | ---D | C] -- C:\Users\RITTERBY\AppData\Local\{840A25D8-CBE1-4F8C-8AA7-37F8CB69E9D1}
[2013/05/28 22:26:12 | 000,000,000 | ---D | C] -- C:\Users\RITTERBY\AppData\Local\{C6808C93-3DA9-477A-BBBA-C682C096D8E7}
[2013/05/28 10:26:06 | 000,000,000 | ---D | C] -- C:\Users\RITTERBY\AppData\Local\{8D9DDB47-F6C9-4DB0-BA96-2ACD36D86B17}
[2013/05/27 22:25:48 | 000,000,000 | ---D | C] -- C:\Users\RITTERBY\AppData\Local\{9DDA605D-06F4-4425-A1A6-4BAD116F2821}
[2013/05/27 15:25:58 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Java
[2013/05/27 10:25:30 | 000,000,000 | ---D | C] -- C:\Users\RITTERBY\AppData\Local\{0F13F55F-954C-4FAA-848E-5641FCC06818}
[2013/05/26 20:37:01 | 000,000,000 | ---D | C] -- C:\Users\RITTERBY\AppData\Local\{8A3D0EAC-54B5-4E40-89AA-B43E6E1E219B}
[2013/05/26 15:06:59 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime
[2013/05/26 15:06:57 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\QuickTime
[2013/05/26 15:06:57 | 000,000,000 | ---D | C] -- C:\ProgramData\Apple Computer
[2013/05/26 10:33:22 | 000,000,000 | ---D | C] -- C:\Users\RITTERBY\AppData\Local\{BA24C60B-EAB6-46B0-97E2-84B69C3BE18B}
[2013/05/25 22:33:04 | 000,000,000 | ---D | C] -- C:\Users\RITTERBY\AppData\Local\{AF681075-80AA-430A-AAF1-70AACFED56EC}
[2013/05/06 04:22:54 | 000,048,640 | ---- | C] (Microsoft Corporation) -- C:\ProgramData\8blor.dat
========== Files - Modified Within 30 Days ==========
[2013/06/24 14:35:36 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\RITTERBY\Desktop\OTL.exe
[2013/06/24 14:27:00 | 000,000,926 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
[2013/06/24 14:20:59 | 000,388,608 | ---- | M] (Trend Micro Inc.) -- C:\Users\RITTERBY\Desktop\HiJackThis.exe
[2013/06/24 13:42:00 | 000,000,830 | ---- | M] () -- C:\WINDOWS\tasks\Adobe Flash Player Updater.job
[2013/06/24 07:21:28 | 000,000,408 | ---- | M] () -- C:\WINDOWS\SysWow64\tversity.cookies
[2013/06/24 02:27:00 | 000,000,922 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
[2013/06/23 00:56:12 | 000,067,584 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2013/06/22 22:56:32 | 000,848,230 | ---- | M] () -- C:\WINDOWS\SysNative\PerfStringBackup.INI
[2013/06/22 22:56:32 | 000,718,176 | ---- | M] () -- C:\WINDOWS\SysNative\perfh009.dat
[2013/06/22 22:56:32 | 000,132,542 | ---- | M] () -- C:\WINDOWS\SysNative\perfc009.dat
[2013/06/22 11:31:07 | 268,435,456 | -HS- | M] () -- C:\swapfile.sys
[2013/06/22 09:59:31 | 000,001,109 | ---- | M] () -- C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
[2013/06/21 10:36:27 | 000,242,995 | ---- | M] () -- C:\Users\RITTERBY\Desktop\Guildcraft Summer pinwheel.pdf
[2013/06/20 10:45:56 | 000,010,709 | ---- | M] () -- C:\Users\RITTERBY\Desktop\Thick and Creamy Broccoli Cheddar Soup.rtf
[2013/06/19 14:30:03 | 000,000,000 | ---- | M] () -- C:\end
[2013/06/19 11:08:04 | 007,090,768 | ---- | M] () -- C:\WINDOWS\SysNative\FNTCACHE.DAT
[2013/06/13 12:28:35 | 000,108,553 | ---- | M] () -- C:\Users\RITTERBY\Desktop\Tablets.jpg
[2013/06/13 12:28:35 | 000,108,553 | ---- | M] () -- C:\Users\RITTERBY\Desktop\4824-c-sq.jpg
[2013/06/12 21:48:23 | 000,867,240 | ---- | M] (Oracle Corporation) -- C:\WINDOWS\SysWow64\npDeployJava1.dll
[2013/06/12 21:48:17 | 000,789,416 | ---- | M] (Oracle Corporation) -- C:\WINDOWS\SysWow64\deployJava1.dll
[2013/06/12 21:47:57 | 000,096,168 | ---- | M] (Oracle Corporation) -- C:\WINDOWS\SysWow64\WindowsAccessBridge-32.dll
[2013/06/12 21:43:48 | 000,263,592 | ---- | M] (Oracle Corporation) -- C:\WINDOWS\SysWow64\javaws.exe
[2013/06/12 21:43:44 | 000,175,016 | ---- | M] (Oracle Corporation) -- C:\WINDOWS\SysWow64\javaw.exe
[2013/06/12 21:43:25 | 000,175,016 | ---- | M] (Oracle Corporation) -- C:\WINDOWS\SysWow64\java.exe
[2013/06/11 21:20:21 | 000,001,055 | ---- | M] () -- C:\Users\RITTERBY\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk
[2013/06/08 18:26:49 | 000,003,240 | ---- | M] () -- C:\Users\RITTERBY\Desktop\Do it Yourself.rtf
[2013/06/08 10:59:24 | 000,638,065 | ---- | M] () -- C:\Users\RITTERBY\Desktop\Turtles_O.png
[2013/06/08 10:59:23 | 000,000,132 | ---- | M] () -- C:\Users\RITTERBY\AppData\Roaming\Adobe PNG Format CS6 Prefs
[2013/06/08 10:57:11 | 001,017,289 | ---- | M] () -- C:\Users\RITTERBY\Desktop\Turtles.png
[2013/06/07 00:30:47 | 001,040,322 | ---- | M] () -- C:\Users\RITTERBY\Desktop\Sofia.png
[2013/06/07 00:21:11 | 000,937,182 | ---- | M] () -- C:\Users\RITTERBY\Desktop\OneDirection.png
[2013/06/07 00:20:33 | 000,730,199 | ---- | M] () -- C:\Users\RITTERBY\Desktop\OneDirection_O.png
[2013/06/06 17:29:36 | 000,531,949 | ---- | M] () -- C:\Users\RITTERBY\Desktop\NinjagoZX_O.png
[2013/06/06 17:28:12 | 000,969,543 | ---- | M] () -- C:\Users\RITTERBY\Desktop\NinjagoZX.png
[2013/06/06 17:25:14 | 000,527,492 | ---- | M] () -- C:\Users\RITTERBY\Desktop\Ninjago_O.png
[2013/06/06 17:21:52 | 000,960,237 | ---- | M] () -- C:\Users\RITTERBY\Desktop\Ninjago.png
[2013/06/06 17:16:51 | 000,710,621 | ---- | M] () -- C:\Users\RITTERBY\Desktop\MonsterHigh_O.png
[2013/06/06 16:59:46 | 000,981,794 | ---- | M] () -- C:\Users\RITTERBY\Desktop\MonsterHigh.png
[2013/06/05 13:05:21 | 000,382,536 | ---- | M] (BitDefender S.R.L.) -- C:\WINDOWS\SysNative\drivers\trufos.sys
[2013/06/04 15:09:22 | 000,693,112 | ---- | M] (Adobe Systems Incorporated) -- C:\WINDOWS\SysWow64\FlashPlayerApp.exe
[2013/06/04 15:09:22 | 000,078,200 | ---- | M] (Adobe Systems Incorporated) -- C:\WINDOWS\SysWow64\FlashPlayerCPLApp.cpl
[2013/06/02 01:28:49 | 000,208,014 | ---- | M] () -- C:\Users\RITTERBY\Desktop\vmf-font_anha-queen-vmf.zip
[2013/06/02 01:27:34 | 000,043,873 | ---- | M] () -- C:\Users\RITTERBY\Desktop\b09d0b6c0b024ed4bc79f1e43a24eb44.jpg
[2013/06/02 01:21:18 | 000,104,447 | ---- | M] () -- C:\Users\RITTERBY\Desktop\aldus_royal.zip
[2013/06/02 01:18:48 | 000,157,193 | ---- | M] () -- C:\Users\RITTERBY\Desktop\dexsar-harry-anugrah_dhf-milestone-script-demo.zip
[2013/06/02 01:17:53 | 000,479,361 | ---- | M] () -- C:\Users\RITTERBY\Desktop\0d1beede37c14accb9a047cda0ea99b8.png
[2013/06/02 01:16:53 | 001,490,298 | ---- | M] () -- C:\Users\RITTERBY\Desktop\khryskreations_kbastitchintime.zip
[2013/06/02 01:15:22 | 000,623,930 | ---- | M] () -- C:\Users\RITTERBY\Desktop\kc-fonts_urban-jungle.zip
[2013/06/02 01:13:31 | 000,302,526 | ---- | M] () -- C:\Users\RITTERBY\Desktop\müns-grebäck_ventography-personal-use-only.zip
[2013/05/30 16:24:29 | 001,257,472 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\kernel32.dll
[2013/05/30 00:08:59 | 000,220,956 | ---- | M] () -- C:\Users\RITTERBY\Desktop\fd538eef9b7353c9c5c182c259cb5a81.jpg
[2013/05/29 14:37:49 | 000,021,498 | ---- | M] () -- C:\Users\RITTERBY\Desktop\805ecbd27a00afd465818655a9e96173.png
========== Files Created - No Company Name ==========
[2013/06/22 09:59:31 | 000,001,109 | ---- | C] () -- C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
[2013/06/21 10:36:27 | 000,242,995 | ---- | C] () -- C:\Users\RITTERBY\Desktop\Guildcraft Summer pinwheel.pdf
[2013/06/19 14:29:59 | 000,000,000 | ---- | C] () -- C:\end
[2013/06/19 11:08:01 | 007,090,768 | ---- | C] () -- C:\WINDOWS\SysNative\FNTCACHE.DAT
[2013/06/14 14:47:15 | 000,386,646 | ---- | C] () -- C:\WINDOWS\SysNative\ApnDatabase.xml
[2013/06/13 12:29:15 | 000,108,553 | ---- | C] () -- C:\Users\RITTERBY\Desktop\Tablets.jpg
[2013/06/13 12:28:53 | 000,108,553 | ---- | C] () -- C:\Users\RITTERBY\Desktop\4824-c-sq.jpg
[2013/06/10 10:24:18 | 000,010,709 | ---- | C] () -- C:\Users\RITTERBY\Desktop\Thick and Creamy Broccoli Cheddar Soup.rtf
[2013/06/08 18:26:49 | 000,003,240 | ---- | C] () -- C:\Users\RITTERBY\Desktop\Do it Yourself.rtf
[2013/06/08 10:59:20 | 000,638,065 | ---- | C] () -- C:\Users\RITTERBY\Desktop\Turtles_O.png
[2013/06/08 10:57:09 | 001,017,289 | ---- | C] () -- C:\Users\RITTERBY\Desktop\Turtles.png
[2013/06/07 00:30:44 | 001,040,322 | ---- | C] () -- C:\Users\RITTERBY\Desktop\Sofia.png
[2013/06/07 00:21:09 | 000,937,182 | ---- | C] () -- C:\Users\RITTERBY\Desktop\OneDirection.png
[2013/06/07 00:20:30 | 000,730,199 | ---- | C] () -- C:\Users\RITTERBY\Desktop\OneDirection_O.png
[2013/06/06 17:29:34 | 000,531,949 | ---- | C] () -- C:\Users\RITTERBY\Desktop\NinjagoZX_O.png
[2013/06/06 17:28:09 | 000,969,543 | ---- | C] () -- C:\Users\RITTERBY\Desktop\NinjagoZX.png
[2013/06/06 17:25:12 | 000,527,492 | ---- | C] () -- C:\Users\RITTERBY\Desktop\Ninjago_O.png
[2013/06/06 17:21:49 | 000,960,237 | ---- | C] () -- C:\Users\RITTERBY\Desktop\Ninjago.png
[2013/06/06 17:16:48 | 000,710,621 | ---- | C] () -- C:\Users\RITTERBY\Desktop\MonsterHigh_O.png
[2013/06/06 16:59:35 | 000,981,794 | ---- | C] () -- C:\Users\RITTERBY\Desktop\MonsterHigh.png
[2013/06/02 01:28:56 | 000,043,873 | ---- | C] () -- C:\Users\RITTERBY\Desktop\b09d0b6c0b024ed4bc79f1e43a24eb44.jpg
[2013/06/02 01:28:49 | 000,208,014 | ---- | C] () -- C:\Users\RITTERBY\Desktop\vmf-font_anha-queen-vmf.zip
[2013/06/02 01:21:18 | 000,104,447 | ---- | C] () -- C:\Users\RITTERBY\Desktop\aldus_royal.zip
[2013/06/02 01:18:48 | 000,157,193 | ---- | C] () -- C:\Users\RITTERBY\Desktop\dexsar-harry-anugrah_dhf-milestone-script-demo.zip
[2013/06/02 01:18:34 | 000,479,361 | ---- | C] () -- C:\Users\RITTERBY\Desktop\0d1beede37c14accb9a047cda0ea99b8.png
[2013/06/02 01:16:53 | 001,490,298 | ---- | C] () -- C:\Users\RITTERBY\Desktop\khryskreations_kbastitchintime.zip
[2013/06/02 01:15:21 | 000,623,930 | ---- | C] () -- C:\Users\RITTERBY\Desktop\kc-fonts_urban-jungle.zip
[2013/06/02 01:13:31 | 000,302,526 | ---- | C] () -- C:\Users\RITTERBY\Desktop\müns-grebäck_ventography-personal-use-only.zip
[2013/05/30 00:23:41 | 000,042,488 | ---- | C] () -- C:\Users\RITTERBY\Desktop\Metropolis 1920.otf
[2013/05/30 00:09:53 | 000,220,956 | ---- | C] () -- C:\Users\RITTERBY\Desktop\fd538eef9b7353c9c5c182c259cb5a81.jpg
[2013/05/29 14:37:59 | 000,021,498 | ---- | C] () -- C:\Users\RITTERBY\Desktop\805ecbd27a00afd465818655a9e96173.png
[2013/05/06 04:22:50 | 095,023,320 | ---- | C] () -- C:\ProgramData\23lldnur.pad
[2013/05/06 04:15:19 | 000,000,151 | ---- | C] () -- C:\ProgramData\lot84.reg
[2013/05/06 04:15:19 | 000,000,055 | ---- | C] () -- C:\ProgramData\lot84.bat
[2013/05/06 04:15:18 | 095,023,320 | ---- | C] () -- C:\ProgramData\lot84.pad
[2013/05/06 04:15:18 | 095,023,320 | ---- | C] () -- C:\ProgramData\ej3gq.pad
[2013/01/02 22:23:17 | 000,000,062 | ---- | C] () -- C:\WINDOWS\ENX330.ini
[2012/12/19 20:39:48 | 000,000,132 | ---- | C] () -- C:\Users\RITTERBY\AppData\Roaming\Adobe IllExport Filter CS6 Prefs
[2012/12/10 22:14:04 | 000,003,584 | ---- | C] () -- C:\Users\RITTERBY\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2012/11/12 00:37:27 | 000,481,294 | ---- | C] () -- C:\ProgramData\1352705226.bdinstall.bin
[2012/11/12 00:18:10 | 000,206,080 | ---- | C] () -- C:\ProgramData\1352704622.bdinstall.bin
[2012/11/11 12:09:48 | 000,083,968 | ---- | C] () -- C:\WINDOWS\SysWow64\OEMLicense.dll
[2012/10/11 20:49:54 | 000,004,608 | ---- | C] () -- C:\WINDOWS\SysWow64\Viveza2FC64.dll
[2012/10/11 20:48:50 | 000,003,072 | ---- | C] () -- C:\WINDOWS\SysWow64\Viveza2FC32.dll
[2012/10/11 12:35:35 | 000,003,584 | ---- | C] () -- C:\WINDOWS\SysWow64\SilverEfexPro2FC32.dll
[2012/09/16 13:37:42 | 000,000,320 | -H-- | C] () -- C:\WINDOWS\nlsPreferences.dat
[2012/09/11 14:18:08 | 000,000,037 | ---- | C] () -- C:\WINDOWS\iltwain.ini
[2012/09/10 13:45:05 | 000,000,083 | ---- | C] () -- C:\WINDOWS\EPSPR260.ini
[2012/09/04 19:17:56 | 000,326,144 | ---- | C] () -- C:\WINDOWS\SysWow64\ColorEfexPro4FC32.dll
[2012/09/04 12:00:40 | 002,510,464 | ---- | C] () -- C:\WINDOWS\PE_Rom.dll
[2012/08/13 14:28:54 | 000,108,777 | ---- | C] () -- C:\ProgramData\1344893305.bdinstall.bin
[2012/08/13 14:20:03 | 000,364,341 | ---- | C] () -- C:\ProgramData\1344892342.bdinstall.bin
[2012/08/01 22:52:50 | 000,000,116 | ---- | C] () -- C:\WINDOWS\ULEAD32.INI
[2012/07/26 01:13:10 | 000,215,943 | ---- | C] () -- C:\WINDOWS\SysWow64\dssec.dat
[2012/07/26 01:13:09 | 000,000,741 | ---- | C] () -- C:\WINDOWS\SysWow64\NOISE.DAT
[2012/07/26 00:21:26 | 000,067,584 | --S- | C] () -- C:\WINDOWS\bootstat.dat
[2012/07/25 18:17:42 | 000,043,520 | ---- | C] () -- C:\WINDOWS\SysWow64\BWContextHandler.dll
[2012/07/25 13:37:29 | 000,043,131 | ---- | C] () -- C:\WINDOWS\mib.bin
[2012/07/25 13:28:31 | 000,364,544 | ---- | C] () -- C:\WINDOWS\SysWow64\msjetoledb40.dll
[2012/07/21 23:34:00 | 000,000,132 | ---- | C] () -- C:\Users\RITTERBY\AppData\Roaming\Adobe PNG Format CS6 Prefs
[2012/07/17 20:24:08 | 000,002,437 | ---- | C] () -- C:\WINDOWS\Tablet10000x6583.ini
[2012/07/09 21:19:52 | 000,003,584 | ---- | C] () -- C:\WINDOWS\SysWow64\HDREfexPro2FC32.dll
[2012/07/08 22:18:57 | 000,073,220 | ---- | C] () -- C:\WINDOWS\SysWow64\EPPICPrinterDB.dat
[2012/07/08 22:18:57 | 000,031,053 | ---- | C] () -- C:\WINDOWS\SysWow64\EPPICPattern131.dat
[2012/07/08 22:18:57 | 000,029,114 | ---- | C] () -- C:\WINDOWS\SysWow64\EPPICPattern1.dat
[2012/07/08 22:18:57 | 000,027,417 | ---- | C] () -- C:\WINDOWS\SysWow64\EPPICPattern121.dat
[2012/07/08 22:18:57 | 000,021,021 | ---- | C] () -- C:\WINDOWS\SysWow64\EPPICPattern3.dat
[2012/07/08 22:18:57 | 000,015,670 | ---- | C] () -- C:\WINDOWS\SysWow64\EPPICPattern5.dat
[2012/07/08 22:18:57 | 000,013,280 | ---- | C] () -- C:\WINDOWS\SysWow64\EPPICPattern2.dat
[2012/07/08 22:18:57 | 000,010,673 | ---- | C] () -- C:\WINDOWS\SysWow64\EPPICPattern4.dat
[2012/07/08 22:18:57 | 000,004,943 | ---- | C] () -- C:\WINDOWS\SysWow64\EPPICPattern6.dat
[2012/07/08 22:18:57 | 000,001,140 | ---- | C] () -- C:\WINDOWS\SysWow64\EPPICPresetData_PT.dat
[2012/07/08 22:18:57 | 000,001,140 | ---- | C] () -- C:\WINDOWS\SysWow64\EPPICPresetData_BP.dat
[2012/07/08 22:18:57 | 000,001,137 | ---- | C] () -- C:\WINDOWS\SysWow64\EPPICPresetData_ES.dat
[2012/07/08 22:18:57 | 000,001,130 | ---- | C] () -- C:\WINDOWS\SysWow64\EPPICPresetData_FR.dat
[2012/07/08 22:18:57 | 000,001,130 | ---- | C] () -- C:\WINDOWS\SysWow64\EPPICPresetData_CF.dat
[2012/07/08 22:18:57 | 000,001,104 | ---- | C] () -- C:\WINDOWS\SysWow64\EPPICPresetData_EN.dat
[2012/07/08 22:18:57 | 000,000,097 | ---- | C] () -- C:\WINDOWS\SysWow64\PICSDK.ini
[2012/07/08 22:17:48 | 000,000,084 | ---- | C] () -- C:\WINDOWS\EPSPRX595.ini
[2012/07/08 21:49:34 | 000,000,036 | -H-- | C] () -- C:\WINDOWS\SysWow64\f9t.dat
[2012/07/07 10:53:32 | 000,481,832 | ---- | C] () -- C:\ProgramData\1341683489.bdinstall.bin
[2012/07/05 11:06:54 | 000,015,232 | ---- | C] () -- C:\WINDOWS\SysWow64\drivers\AsIO.sys
[2012/07/05 11:06:33 | 000,011,832 | ---- | C] () -- C:\WINDOWS\SysWow64\drivers\AsInsHelp64.sys
[2012/07/05 10:57:24 | 000,001,769 | ---- | C] () -- C:\WINDOWS\Language_trs.ini
[2012/07/05 10:57:15 | 000,027,769 | ---- | C] () -- C:\WINDOWS\Ascd_tmp.ini
[2012/06/02 07:31:19 | 000,673,088 | ---- | C] () -- C:\WINDOWS\SysWow64\mlang.dat
========== ZeroAccess Check ==========
[2013/05/09 13:17:28 | 000,002,048 | -HS- | M] () -- C:\$Recycle.bin\S-1-5-18\$8032e41b85612782079b8eca8584d680\@
[2013/05/09 13:17:28 | 000,000,000 | -HSD | M] -- C:\$Recycle.bin\S-1-5-18\$8032e41b85612782079b8eca8584d680\L
[2013/05/09 13:17:28 | 000,000,000 | -HSD | M] -- C:\$Recycle.bin\S-1-5-18\$8032e41b85612782079b8eca8584d680\U
[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64
"ThreadingModel" = Both
"" = C:\$Recycle.Bin\S-1-5-21-3155505729-549796363-3381092046-1000\$8032e41b85612782079b8eca8584d680\n.
[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
"" = C:\Windows\SysNative\shell32.dll -- [2013/03/05 23:31:28 | 019,758,592 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shell32.dll -- [2013/03/05 22:03:37 | 017,561,600 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64
"" = C:\$Recycle.Bin\S-1-5-18\$8032e41b85612782079b8eca8584d680\n.
"ThreadingModel" = Free
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = %systemroot%\system32\wbem\fastprox.dll -- [2012/07/25 20:18:27 | 000,784,896 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\wbemess.dll -- [2012/07/25 20:07:41 | 000,455,680 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]
========== LOP Check ==========
[2013/02/26 17:30:36 | 000,000,000 | ---D | M] -- C:\Users\RITTERBY\AppData\Roaming\.minecraft
[2012/08/01 22:35:31 | 000,000,000 | ---D | M] -- C:\Users\RITTERBY\AppData\Roaming\Alien Skin
[2012/11/12 00:36:37 | 000,000,000 | ---D | M] -- C:\Users\RITTERBY\AppData\Roaming\Bitdefender
[2012/07/09 01:05:25 | 000,000,000 | ---D | M] -- C:\Users\RITTERBY\AppData\Roaming\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1
[2012/12/08 23:06:03 | 000,000,000 | ---D | M] -- C:\Users\RITTERBY\AppData\Roaming\com.adobe.WidgetBrowser
[2013/06/24 11:59:16 | 000,000,000 | ---D | M] -- C:\Users\RITTERBY\AppData\Roaming\Dropbox
[2013/01/30 20:11:44 | 000,000,000 | ---D | M] -- C:\Users\RITTERBY\AppData\Roaming\eCraftShop Pro
[2013/03/10 08:15:11 | 000,000,000 | ---D | M] -- C:\Users\RITTERBY\AppData\Roaming\Epson
[2012/10/12 13:20:36 | 000,000,000 | ---D | M] -- C:\Users\RITTERBY\AppData\Roaming\Extensis
[2013/01/20 08:23:03 | 000,000,000 | ---D | M] -- C:\Users\RITTERBY\AppData\Roaming\Flash Video Capture Data
[2013/02/17 15:19:25 | 000,000,000 | ---D | M] -- C:\Users\RITTERBY\AppData\Roaming\ImgBurn
[2012/07/08 22:27:22 | 000,000,000 | ---D | M] -- C:\Users\RITTERBY\AppData\Roaming\Leadertech
[2013/05/09 17:05:02 | 000,000,000 | ---D | M] -- C:\Users\RITTERBY\AppData\Roaming\mjusbsp
[2012/10/21 19:19:17 | 000,000,000 | ---D | M] -- C:\Users\RITTERBY\AppData\Roaming\Nik Software
[2013/04/06 18:27:22 | 000,000,000 | ---D | M] -- C:\Users\RITTERBY\AppData\Roaming\OpenOffice.org
[2012/07/07 10:51:33 | 000,000,000 | ---D | M] -- C:\Users\RITTERBY\AppData\Roaming\QuickScan
[2012/07/07 10:48:59 | 000,000,000 | ---D | M] -- C:\Users\RITTERBY\AppData\Roaming\StageManager.BD092818F67280F4B42B04877600987F0111B594.1
[2013/02/20 16:54:11 | 000,000,000 | ---D | M] -- C:\Users\RITTERBY\AppData\Roaming\Stamps.com Internet Postage
[2013/04/13 06:56:09 | 000,000,000 | ---D | M] -- C:\Users\RITTERBY\AppData\Roaming\TuneUp Software
[2012/07/07 11:30:58 | 000,000,000 | ---D | M] -- C:\Users\RITTERBY\AppData\Roaming\Windows Live Writer
========== Purity Check ==========
========== Custom Scans ==========
< Logfile of Trend Micro HijackThis v2.0.4 >
[2012/07/26 00:22:10 | 000,000,006 | -H-- | C] () -- C:\WINDOWS\Tasks\SA.DAT
[2012/10/04 09:44:17 | 000,000,830 | ---- | C] () -- C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
[2012/11/19 09:12:40 | 000,000,922 | ---- | C] () -- C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
[2012/11/19 09:12:40 | 000,000,926 | ---- | C] () -- C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
< Scan saved at 2:22:26 PM, on 6/24/2013 >
< Platform: Unknown Windows (WinNT 6.02.1008) >
< MSIE: Internet Explorer v10.0 (10.00.9200.16537) >
< Boot mode: Normal >
< >
< Running processes: >
< C:\Users\RITTERBY\AppData\Roaming\Dropbox\bin\Dropbox.exe >
[2013/05/24 17:47:30 | 027,776,968 | ---- | M] (Dropbox, Inc.) -- C:\Users\RITTERBY\AppData\Roaming\Dropbox\bin\Dropbox.exe
< C:\Program Files (x86)\Carbonite\Carbonite Backup\CarboniteUI.exe >
[2013/01/14 16:12:18 | 001,065,480 | R--- | M] (Carbonite, Inc.) -- C:\Program Files (x86)\Carbonite\Carbonite Backup\CarboniteUI.exe
< C:\Program Files (x86)\Windows Live\Mail\wlmail.exe >
[2012/03/08 19:28:52 | 000,092,024 | ---- | M] (Microsoft Corporation) -- C:\Program Files (x86)\Windows Live\Mail\wlmail.exe
< C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe >
[2012/03/08 17:44:02 | 000,025,456 | ---- | M] (Microsoft Corporation) -- C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe
< C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\AAM Updates Notifier.exe >
[2012/09/20 07:44:16 | 000,296,392 | ---- | M] (Adobe Systems Incorporated) -- C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\AAM Updates Notifier.exe
< C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe >
[2013/03/12 07:32:50 | 000,253,816 | ---- | M] (Oracle Corporation) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
< C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE >
[2013/02/21 04:28:11 | 000,770,608 | ---- | M] (Microsoft Corporation) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe
< C:\Users\RITTERBY\Desktop\HiJackThis.exe >
[2013/06/24 14:20:59 | 000,388,608 | ---- | M] (Trend Micro Inc.) -- C:\Users\RITTERBY\Desktop\HiJackThis.exe
< >
< R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft....k/?LinkId=54896 >
Invalid Switch: ?LinkId=54896
< R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://google.com/ >
Invalid Switch:
< R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft....k/?LinkId=54896 >
Invalid Switch: ?LinkId=54896
< R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank >
< R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = >
< R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = >
< R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm >
< R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local >
< R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = >
< R3 - URLSearchHook: (no name) - {81017EA9-9AA8-4A6A-9734-7AF40E7D593F} - (no file) >
< F2 - REG:system.ini: UserInit=userinit.exe, >
< O2 - BHO: HelloWorldBHO - {5BDE3F24-D7B3-40D9-BD31-D1CFF12C47B4} - C:\Program Files (x86)\OApps\SelectionLinks.dll >
< O2 - BHO: Java Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll >
< O2 - BHO: Windows Live Messenger Companion Helper - {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll >
< O2 - BHO: Adobe PDF Conversion Toolbar Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll >
< O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll >
< O2 - BHO: Science BHO - {F0F12903-DE76-4DF7-BCDC-0A0689151189} - C:\Program Files (x86)\SaveValet\ie\SaveValetIE_32.dll >
< O2 - BHO: SmartSelect - {F4971EE7-DAA0-4053-9964-665D8EE6A077} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll >
< O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll >
< O4 - HKLM\..\Run: [AdobeCS6ServiceManager] "C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe" -launchedbylogin >
< O4 - HKLM\..\Run: [DLSService] "C:\Program Files (x86)\DYMO\DYMO Label Software\DLSService.exe" >
< O4 - HKLM\..\Run: [Info Center] C:\Program Files (x86)\PCPitstop\Info Center\InfoCenter.exe >
< O4 - HKLM\..\Run: [SwitchBoard] C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe >
< O4 - HKLM\..\Run: [WTClient] WTClient.exe >
< O4 - HKLM\..\Run: [ASUS AiChargerPlus Execute] C:\Program Files (x86)\InstallShield Installation Information\{E6931688-DA2B-4E16-8539-3D323D69C677}\AiChargerPlus.exe >
< O4 - HKLM\..\Run: [EEventManager] "C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe" >
< O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" >
< O4 - HKLM\..\Run: [Adobe Acrobat Speed Launcher] "C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Acrobat_sl.exe" >
< O4 - HKLM\..\Run: [Acrobat Assistant 8.0] "C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Acrotray.exe" >
< O4 - HKLM\..\Run: [Carbonite Backup] C:\Program Files (x86)\Carbonite\Carbonite Backup\CarboniteUI.exe >
< O4 - HKLM\..\Run: [APSDaemon] "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe" >
< O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime >
< O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" >
< O4 - HKCU\..\Run: [cdloader] "C:\Users\RITTERBY\AppData\Roaming\mjusbsp\cdloader2.exe" MAGICJACK >
< O4 - Startup: Dropbox.lnk = RITTERBY\AppData\Roaming\Dropbox\bin\Dropbox.exe >
< O4 - Startup: OpenOffice.org 3.4.1.lnk = C:\Program Files (x86)\OpenOffice.org 3\program\quickstart.exe >
< O4 - Global Startup: Bloggie Watcher Utility.lnk = C:\Program Files (x86)\Sony\Bloggie Software\BGVolumeWatcher.exe >
< O8 - Extra context menu item: Append Link Target to Existing PDF - res://C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIEAppendSelLinks.html >
Invalid Switch: AcroIEAppendSelLinks.html
< O8 - Extra context menu item: Append to Existing PDF - res://C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIEAppend.html >
Invalid Switch: AcroIEAppend.html
< O8 - Extra context menu item: Convert Link Target to Adobe PDF - res://C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIECaptureSelLinks.html >
Invalid Switch: AcroIECaptureSelLinks.html
< O8 - Extra context menu item: Convert to Adobe PDF - res://C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIECapture.html >
Invalid Switch: AcroIECapture.html
< O9 - Extra button: @C:\Program Files (x86)\Windows Live\Companion\companionlang.dll,-600 - {0000036B-C524-4050-81A0-243669A86B9F} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll >
< O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - (no file) >
< O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - (no file) >
< O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics >
< O16 - DPF: {02BF25D5-8C17-4B23-BC80-D3488ABDDC6B} (QuickTime Object) - http://qtinstall.app...ex/qtplugin.cab >
Invalid Switch: qtplugin.cab
< O16 - DPF: {0D41B8C5-2599-4893-8183-00195EC8D5F9} (asusTek_sysctrl Class) - http://support.asus....k_sys_ctrl3.cab >
Invalid Switch: asusTek_sys_ctrl3.cab
< O16 - DPF: {0E5F0222-96B9-11D3-8997-00104BD12D94} (PCPitstop Utility) - http://utilities.pcp...ols/pcmatic.cab >
Invalid Switch: pcmatic.cab
< O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe >
< O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing) >
< O23 - Service: CarboniteService - Carbonite, Inc. (www.carbonite.com) - C:\Program Files\Carbonite\Carbonite Backup\carboniteservice.exe >
< O23 - Service: DYMO PnP Service (DymoPnpService) - Sanford, L.P. - C:\Program Files (x86)\DYMO\DYMO Label Software\DymoPnpService.exe >
< O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing) >
< O23 - Service: EpsonCustomerParticipation - SEIKO EPSON CORPORATION - C:\Program Files\EPSON\EpsonCustomerParticipation\EPCP.exe >
< O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing) >
< O23 - Service: Google Update Service (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe >
< O23 - Service: Google Update Service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe >
< O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing) >
< O23 - Service: MBAMScheduler - Malwarebytes Corporation - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe >
< O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe >
< O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing) >
< O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing) >
< O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\WINDOWS\system32\nvvsvc.exe (file missing) >
< O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe >
< O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing) >
< O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing) >
< O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing) >
< O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing) >
< O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing) >
< O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe >
< O23 - Service: TuneUp Utilities Service (TuneUp.UtilitiesSvc) - TuneUp Software - C:\Program Files (x86)\TuneUp Utilities 2013\TuneUpUtilitiesService64.exe >
< O23 - Service: TVersity Media Server (TVersityMediaServer) - Unknown owner - C:\ProgramData\TVersity\Media Server\MediaServer.exe >
< O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing) >
< O23 - Service: Bitdefender Desktop Update Service (UPDATESRV) - Bitdefender - C:\Program Files\Bitdefender\Bitdefender 2013\updatesrv.exe >
< O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing) >
< O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing) >
< O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing) >
< O23 - Service: Bitdefender Virus Shield (VSSERV) - Bitdefender - C:\Program Files\Bitdefender\Bitdefender 2013\vsserv.exe >
< O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing) >
< O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing) >
< O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing) >
< >
< -- >
< End of file - 11072 bytes >
< End of report >